Description
A global leader in sports fashion and streetwear retail, our client represents some of the world’s most premium and trend-driven brands. Known for its innovative product curation and best-in-class in-store and digital experiences, the company continues to redefine athletic and lifestyle fashion on an international scale.
Established in 1981 with a single store in the North West of England, our client is a leading global omnichannel retailer of sports fashion and outdoor brands.
Today, the company operates over 4,500 stores (as of August 2024) across 36 countries, with a strong presence in the UK, Europe, North America, and the Asia-Pacific region.
Vision: Connect globally, inspire locally, and empower individually.
The company aims to inspire a new generation of globally minded consumers through its connection to the universal culture of sport, music, and fashion.
Mission: To continuously set the global standard for retail experiences through best-in-class operations, connected consumer journeys, and the distinctive delivery of the world’s most authentic brands to market.”
Requirements
Senior DevOps/SecOps engineer with strong expertise in cloud security, security remediation, infrastructure automation, and cloud operations across both AWS and Google Cloud Platform. The role involves working closely with the Infosec team to understand, prioritise, investigate, and resolve critical and high-priority security issues across a large-scale, multi-vendor enterprise environment.
Technical Skills
● AWS Services: IAM, Security Hub, GuardDuty, Inspector, CloudTrail, CloudWatch, Config, KMS, Secrets Manager, Systems Manager, WAF, Shield, S3, Lambda, ECR, DynamoDB
● GCP Services: IAM, Security Command Center, Cloud Asset Inventory, Cloud Audit Logs, Cloud Logging, Cloud Monitoring, Cloud KMS, Secret Manager, Cloud Armor, Artifact Registry, Cloud Storage, Cloud Run, Cloud Functions.
● AWS Foundations: Landing Zone, Control Tower, AWS Organizations, Service Control Policies, networking, security, and account governance.
● GCP Foundations: Organisation and folder structure, organisation policies, Shared VPC, networking, IAM, security, and project governance.
● Infrastructure as Code: Terraform, Terragrunt, CloudFormation
● Version Control & CI/CD: GitHub, GitHub Actions
● Identity & Access Management: Role-based access control, least privilege, privileged access, service accounts, workload identities, and access reviews.
● Compliance & Governance: Security controls, audit evidence, policy enforcement, vulnerability remediation, risk management, and regulatory compliance.
#LI-2KK #LI-Remote
Job responsibilities
• Work closely with Infosec to understand and resolve critical and high priority security issues.
• Review, validate and prioritise security findings across AWS and GCP
• Investigate the root cause, technical impact and affected resources associated with security findings
• Translate findings into clear technical remediation plans. Implement these plans through to completion and produce runbooks where required.
• Coordinate remediation activities across engineering teams, platform teams, application owners and third-party suppliers.
• Implement security fixes in cloud consoles or using infrastructure as code and automated deployments depending on the environment.
• Experience in both AWS and GCP.
• Strong analytical, security and problem solving skills.
• Experience working directly with Infosec, governance, risk, compliance and engineering teams.
• Ability to understand security findings, assess their technical impact and translate them into clear remediation actions.
• Experience prioritising remediation tasks based on severity, risk, business impact and operational constraints.
• Solid communication, stakeholder management and cross-team collaboration skills. Ability to update and manage Senior InfoSec and Service owners is a must.
What we offer
Empowering Projects: With 500+ clients spanning diverse industries and domains, we provide an exciting opportunity to contribute to groundbreaking projects that leverage cutting-edge technologies. As a team, we engineer digital products that positively impact people’s lives.
Empowering Growth: We foster a culture of continuous learning and professional development. Our dedication is to provide timely and comprehensive assistance for every consultant through our dedicated Learning & Development team, ensuring their continuous growth and success.
DE&I Matters: At GlobalLogic, we deeply value and embrace diversity. We are dedicated to providing equal opportunities for all individuals, fostering an inclusive and empowering work environment.
Career Development: Our corporate culture places a strong emphasis on career development, offering abundant opportunities for growth. Regular interactions with our teams ensure their engagement, motivation, and recognition. We empower our team members to pursue their career goals with confidence and enthusiasm.
Comprehensive Benefits: In addition to equitable compensation, we provide a comprehensive benefits package that prioritizes the overall well-being of our consultants. We genuinely care about their health and strive to create a positive work environment.
Flexible Opportunities: At GlobalLogic, we prioritize work-life balance by offering flexible opportunities tailored to your lifestyle. Explore relocation and rotation options for diverse cultural and professional experiences in different countries with our company.
About GlobalLogic
GlobalLogic, a Hitachi Group Company, is a trusted digital engineering partner to the world’s largest and most forward-thinking companies. Since 2000, we’ve been at the forefront of the digital revolution – helping create some of the most innovative and widely used digital products and experiences. Today we continue to collaborate with clients in transforming businesses and redefining industries through intelligent products, platforms, and services.




